CVE-2022-0545 - CVE House
Back to Database
Status published High CVE-2022-0545

An integer overflow in the processing of loaded 2D images...

Vulnerability Description

An integer overflow in the processing of loaded 2D images leads to a write-what-where vulnerability and an out-of-bounds read vulnerability, allowing an attacker to leak sensitive information or achieve code execution in the context of the Blender process when a specially crafted image file is loaded. This flaw affects Blender versions prior to 2.83.19, 2.93.8 and 3.1.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-0545

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

Blender
Vulnerable Versions:
Blender versions prior to 2.83.19, 2.93.8 and 3.1

Timeline

Official Publish: February 24th, 2022
Last Modified: August 2nd, 2024
Added to House: July 21st, 2026

CVSS Vectors

V3: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Weaknesses (CWE)